Back

CVE-2004-1588

SQL injection vulnerability in GoSmart Message Board allows remote attackers to execute arbitrary SQL code via the (1) QuestionNumber and Category parameters to Forum.asp or (2) Username and Password parameter to Login_Exec.asp.

Published: Dec 31, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
gosmart gosmart_message_board *

GitHub Security Advisory GHSA-h35f-36ph-rqj8

SQL injection vulnerability in GoSmart Message Board allows remote attackers to execute arbitrary...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.33%

Top 31% most likely to be exploited

Threat Score 30.4 / 100

Data Sources

NVD EPSS GitHub